[
CrowdSt... Reviews
](https://www.g2.com/products/crowdstrike-falcon-endpoint-protection-platform/reviews)

[
CrowdSt... Reviews
](https://www.g2.com/products/crowdstrike-falcon-endpoint-protection-platform/reviews)

# CrowdStrike Falcon Endpoint Protection Platform Features

##### 
## Orchestration (4)

Asset Management

Lets users group and organize their endpoints to gather threat intelligence on specific technologies.

Security Workflow Automation

Reduces the need for IT and security professionals to iterate repetitive tasks associated with gathering threat information.

Deployment

The process in which users integrate their existing security systems and endpoints to the threat intelligence platform.

Sandboxing

A feature that allows security testing and information gathering to occur in a secure, resource independent environment.

Show More

##### 
## Information (3)

Proactive Alerts

Prior to security incidents, the product will alert users when a new, relevant vulnerability or threat is discovered.

Malware Detection

Provides multiple techniques and information sources to alert users of malware occurrences.

Intelligence Reports

The ability for users to produce reports outlining detailed and personalized threat information

Show More

##### 
## Personalization (3)

Endpoint Intelligence

Analysis for users to examine threat intelligence data specific to their endpoint devices.

Security Validation

The product has a recurring examination process to update your intelligence reports as new threats emerge.

Dynamic/Code Analysis

The ability to examine your application, website, or database's code to uncover zero-day vulnerabilities.

Show More

##### 
## Response (5)

Resolution Automation

Diagnose and resolve incidents without the need for human interaction.

Resolution Guidance

Guide users through the resolution process and give specific instructions to remedy individual occurrences.

System Isolation

Cuts off network connection or temporarily inactivate applications until incidents are remedied.

Threat Intelligence

Gathers information related to threats in order to gain further information on remedies.

Incident Investigation

Analyzes incidents, correlates related events, and determines the scope and impact of attacks.

Show More

##### 
## Records (2)

Incident Logs

Information on each incident is stored in databases for user reference and analytics.

Incident Reports

Produces reports detailing trends and vulnerabilities related to their network and infrastructure.

Show More

##### 
## Management (6)

Incident Alerts

Gives alerts when incidents arise. Some responses may be automated, but users will still be informed.

Incident Case Management

Ability to track incidents, tasks, evidence, and investigation progress within a structured case.

Workflow Management

Administrators can organize workflows to guide remedies to specific situations incident types.

Extensibility

Allows for customized support for hybrid environments

Workflow Automation

Streamline the flow of work processes by establishing triggers and alerts that notify and route information to the appropriate people when their action is required within the compensation process.

Unified Visibility

Provides all-encompassing display and analysis of environments, resources, traffic, and activity across networks.

Show More

##### 
## Network Management (3)

Activity Monitoring

Documents the actions from endpoints within a network. Alerts users of incidents and abnormal activities and documents the access point.

Asset Management

Keeps records of each network asset and its activity. Discovers new assets accessing the network.

Log Management

Provides security information and stores the data in a secure repository for reference.

Show More

##### 
## Incident Management (3)

Event Management

Alerts users of incidents and allows users to intervene manually or triggers an automated response.

Automated Response

Reduces time spent remedying issues manually. Resolves common network security incidents quickly.

Incident Reporting

Documents cases of abnormal activity and compromised systems.

Show More

##### 
## Security Intelligence (4)

Threat Intelligence

Stores information related to common threats and how to resolve them once incidents occur.

Vulnerability Assessment

Analyzes your existing network and IT infrastructure to outline access points that can be easily compromised.

Advanced Analytics

Allows users to customize analytics with granulized metrics that are pertinent to your specific resources.

Data Examination

Allows users to search databases and incident logs to gain insights on vulnerabilities and incidents.

Show More

##### 
## Administration (5)

Compliance

Monitors assets and enforces security policies to audit assets and infrastructure security.

Web Control

Filters websites and manages whitelisting to enforce compliance protocols for users accessing the internet within the network.

Application Control

Blocks endpoint users from accessing restricted applications.

Asset Management

Keeps records of each network asset and its activity. Discovers new assets accessing the network.

Device Control

Manages user network accessibility on laptops and mobile devices.

Show More

##### 
## Functionality (4)

System Isolation

Cuts off network connection or temporarily inactivate applications until incidents are remedied.

Firewall

Protects endpoint devices from a variety of attacks and malware threats.

Endpoint Intelligence

Analysis for users to examine threat intelligence data specific to their endpoint devices.

Malware Detection

Provides multiple techniques and information sources to alert users of malware occurrences.

Show More

##### 
## Analysis (7)

Automated Remediation

Reduces time spent remedying issues manually. Resolves common network security incidents quickly.

Incident Reports

Produces reports detailing trends and vulnerabilities related to their network and infrastructure.

Behavioral Analysis

Constantly monitors acivity related to user behavior and compares activity to benchmarked patterns and fraud indicators.

Continuous Analysis

Constantly monitors traffic and activity. Detects anomalies in functionality, user accessibility, traffic flows, and tampering.

Behavioral Analysis

Constantly monitors acivity related to user behavior and compares activity to benchmarked patterns and fraud indicators.

Data Context

Provide insights into why trends are occurring and what issues could be related.

Activity Logging

Monitors, records, and logs both real-time and post-event activity.

Show More

##### 
## Detection (3)

Anomaly Detection

Constantly monitors activity related to user behavior and compares activity to benchmarked patterns.

Incident Alerts

Gives alerts when incidents arise. Some responses may be automated, but users will still be informed.

Activity Monitoring

Monitors the actions from endpoints within a network. Alerts users of incidents and abnormal activities and documents the access point.

Show More

##### 
## ServiceNow Apps (2)

ServiceNow Integration

How satisfied are you with this app/integration in the ServiceNow ecosystem?

Value

How valuable is it to be able to use this product with ServiceNow?

Show More

##### 
## Detection & Response (4)

Response Automation

Reduces time spent remedying issues manually. Resolves common network security incidents quickly.

Threat Hunting

Facilitates the proactive search for emerging threats as they target servers, endpoints, and networks.

Rule-Based Detection

Allows administrators to set rules specified to detect issues related to issues such as sensitive data misuse, system misconfiguration, lateral movement, and/or non-compliance.

Real-Time Detection

Constantly monitors system to detect anomalies in real time.

Show More

##### 
## Analytics (3)

Threat Intelligence

Stores information related to common threats and how to resolve them once incidents occur.

Artificial Intelligence & Machine Learning

Facilitates Artificial Intelligence (AI) such as Machine Learning (ML) to enable data ingestion, performance suggestions, and traffic analysis.

Data Collection

Collects information from multiple sources to cross reference and build contextual to correlate intelligence.

Show More

##### 
## Monitoring (5)

Investigate

Investigate identity threats with contextual user information.

Monitoring

Monitor & detect malicous identity and privileges activity

Misconfigurations

Identify identity-related misconfigurations.

Integrate

Offers integrations to identity store providers.

Visability

Provide full coverage of identity estate with granular detail.

Show More

##### 
## Remediation (2)

Remediation

Remove unauthorized accounts and excessive privileges

Audit

Provides full audit trail with notifications, ticketing, and compliance information.

Show More

##### 
## Platform Features (7)

24/7 support

Provides 24/7 support to customers with technical questions.

Proactive report alerts

Proactively sends reports or alerts to customers.

Application control

Lets users detect and block applications that are not a security threat.

Proactive threat hunting

Proactively hunts threats.

Rapid response time

Provides rapid reponse time to cyber threats.

Customizeable reports

Provides the ability to customize reports.

Managed Services

Offers MDR as a service.

Show More

##### 
## Automation Capabilities (3)

Automated remediation

Ability to automatically neutralize or eliminate active vulnerabilities.

Automated investigation

Ability to automatically investigate networks and endpoints for threats.

AI Agents

Utilizes AI agents for detection and response tasks.

Show More

##### 
## Generative AI (9)

AI Text Generation

Allows users to generate text based on a text prompt.

AI Text Summarization

Condenses long documents or text into a brief summary.

AI Text Summarization

Condenses long documents or text into a brief summary.

AI Text Summarization

Condenses long documents or text into a brief summary.

Generate Attack Scenarios

Use AI to propose possible threat actor tactics, techniques, and procedures against specific environments or assets.

Generate Threat Detection Rules

Use AI to automatically create detection rules based on observed patterns.

Generate Threat Summaries

Use AI to produce concise summaries of complex threat reports or alerts.

AI Text Generation

Allows users to generate text based on a text prompt.

AI Text Summarization

Condenses long documents or text into a brief summary.

Show More

##### 
## Agentic AI - Threat Intelligence (4)

Autonomous Task Execution

Capability to perform complex tasks without constant human input

Multi-step Planning

Ability to break down and plan multi-step processes

Proactive Assistance

Anticipates needs and offers suggestions without prompting

Decision Making

Makes informed choices based on available data and objectives

Show More

##### 
## Agentic AI - Security Information and Event Management (SIEM) (4)

Autonomous Task Execution

Capability to perform complex tasks without constant human input

Multi-step Planning

Ability to break down and plan multi-step processes

Proactive Assistance

Anticipates needs and offers suggestions without prompting

Decision Making

Makes informed choices based on available data and objectives

Show More

##### 
## Agentic AI - User and Entity Behavior Analytics (UEBA) (4)

Autonomous Task Execution

Capability to perform complex tasks without constant human input

Multi-step Planning

Ability to break down and plan multi-step processes

Proactive Assistance

Anticipates needs and offers suggestions without prompting

Decision Making

Makes informed choices based on available data and objectives

Show More

##### 
## Agentic AI - Extended Detection and Response (XDR) Platforms (3)

Autonomous Task Execution

Capability to perform complex tasks without constant human input

Proactive Assistance

Anticipates needs and offers suggestions without prompting

Decision Making

Makes informed choices based on available data and objectives

Show More

##### 
## Agentic AI - ServiceNow Store Apps (4)

Autonomous Task Execution

Capability to perform complex tasks without constant human input

Multi-step Planning

Ability to break down and plan multi-step processes

Cross-system Integration

Works across multiple software systems or databases

Proactive Assistance

Anticipates needs and offers suggestions without prompting

Show More

##### 
## Agentic AI - AWS Marketplace (3)

Autonomous Task Execution

Capability to perform complex tasks without constant human input

Multi-step Planning

Ability to break down and plan multi-step processes

Cross-system Integration

Works across multiple software systems or databases

Show More

##### 
## Services - Extended Detection and Response (XDR) (1)

Managed Services

Offers managed detection and response services.

Show More

##### 
## Services - Endpoint Detection & Response (EDR) (1)

Managed Services

Offers managed detection and response services.

Show More

## Top-Rated Alternatives

[

 ![Cynet](https://images.g2crowd.com/uploads/product/hd_favicon/8658ccf2b7b0b54bf25f5d8c02ac9246/cynet.svg "Cynet")

Cynet

4.7/5

(209)

](https://www.g2.com/products/cynet/reviews)

[

 ![SentinelOne Singularity Endpoint](https://images.g2crowd.com/uploads/product/hd_favicon/c15547079e2b285340998eb8a52a44b8/sentinelone-singularity-endpoint.svg "SentinelOne Singularity Endpoint")

SentinelOne Singularity Endpoint

4.7/5

(195)

](https://www.g2.com/products/sentinelone-singularity-endpoint/reviews)

[

 ![ThreatDown](https://images.g2crowd.com/uploads/product/hd_favicon/28bf06470a2d1a33a2054aaa7af30d4c/threatdown.svg "ThreatDown")

ThreatDown

4.6/5

(1,041)

](https://www.g2.com/products/threatdown/reviews)

[
View All Alternatives
](https://www.g2.com/products/crowdstrike-falcon-endpoint-protection-platform/competitors/alternatives)

CrowdStrike Falcon Endpoint Protection Platform Comparisons

 ![Product Avatar Image](https://images.g2crowd.com/uploads/product/image/small_square/small_square_5292562d6a2cb01ab3d34a4e57a3225a/sentinelone-singularity-endpoint.png "Product Avatar Image")

SentinelOne Singularity...

4.7/5

(201)

[
Compare Now
](https://www.g2.com/compare/crowdstrike-falcon-endpoint-protection-platform-vs-sentinelone-singularity-endpoint)

 ![Product Avatar Image](https://images.g2crowd.com/uploads/product/image/small_square/small_square_dae0031c2ae3821616be108bd707a35f/sophos-endpoint.png "Product Avatar Image")

Sophos Endpoint

4.7/5

(830)

[
Compare Now
](https://www.g2.com/compare/crowdstrike-falcon-endpoint-protection-platform-vs-sophos-endpoint)

 ![Product Avatar Image](https://images.g2crowd.com/uploads/product/image/small_square/small_square_8b3109519c061f3739371275d691098a/palo-alto-networks-cortex-xdr.png "Product Avatar Image")

Cortex XDR

4.6/5

(53)

[
Compare Now
](https://www.g2.com/compare/palo-alto-networks-cortex-xdr-vs-crowdstrike-falcon-endpoint-protection-platform)

##### Categories on G2

[
AWS Marketplace
](https://www.g2.com/categories/aws-marketplace)[
Endpoint Management
](https://www.g2.com/categories/endpoint-management)[
ServiceNow Store Apps
](https://www.g2.com/categories/servicenow-store-apps)

[
Endpoint Protection Platforms
](https://www.g2.com/categories/endpoint-protection-platforms)[
Endpoint Detection & Response (EDR)
](https://www.g2.com/categories/endpoint-detection-response-edr)[
Antivirus
](https://www.g2.com/categories/antivirus)[
Managed Detection and Response (MDR)
](https://www.g2.com/categories/managed-detection-and-response-mdr)[
Extended Detection and Response (XDR) Platforms
](https://www.g2.com/categories/extended-detection-and-response-xdr-platforms)[
Security Information and Event Management (SIEM)
](https://www.g2.com/categories/security-information-and-event-management-siem)[
Incident Response
](https://www.g2.com/categories/incident-response)[
Threat Intelligence
](https://www.g2.com/categories/threat-intelligence)[
Identity Threat Detection and Response (ITDR)
](https://www.g2.com/categories/identity-threat-detection-and-response-itdr)[
User and Entity Behavior Analytics (UEBA)
](https://www.g2.com/categories/user-and-entity-behavior-analytics-ueba)

Show More

##### Explore More

[
What is the most cost-effective log analysis solution for enterprises?
](https://www.g2.com/discussions/what-is-the-most-cost-effective-log-analysis-solution-for-enterprises)[
Leading password management solution for office use
](https://www.g2.com/discussions/top-rated-password-management-solutions-for-office-use)[
Google Cloud BigQuery reviews
](https://www.g2.com/products/google-cloud-bigquery/reviews)

[
Which tool supports easy migration from other website platforms?
](https://www.g2.com/discussions/which-tool-supports-easy-migration-from-other-website-platforms)[
What's the most recommended partner relationship management software
](https://www.g2.com/discussions/what-s-the-most-recommended-partner-relationship-management-software)[
Pros and Cons Details
](https://www.g2.com/products/crowdstrike-falcon-endpoint-protection-platform/reviews?qs=pros-and-cons)

Show More

[
What is the most cost-effective log analysis solution for enterprises?
](https://www.g2.com/discussions/what-is-the-most-cost-effective-log-analysis-solution-for-enterprises)[
Leading password management solution for office use
](https://www.g2.com/discussions/top-rated-password-management-solutions-for-office-use)[
Google Cloud BigQuery reviews
](https://www.g2.com/products/google-cloud-bigquery/reviews)

[
Which tool supports easy migration from other website platforms?
](https://www.g2.com/discussions/which-tool-supports-easy-migration-from-other-website-platforms)[
What's the most recommended partner relationship management software
](https://www.g2.com/discussions/what-s-the-most-recommended-partner-relationship-management-software)[
Pros and Cons Details
](https://www.g2.com/products/crowdstrike-falcon-endpoint-protection-platform/reviews?qs=pros-and-cons)